🇳🇱
Site.eu
2026-09-01 10:51:22
(2 days ago)
Excessive multi-domain requests
Brute-Force
🇺🇸
mnsf
2026-09-01 09:05:27
(2 days ago)
Too many Status 40X (22)
Brute-Force
Web App Attack
🇮🇹
CoreTech srl
2026-09-01 01:33:57
(3 days ago)
cloudlinux2 fail2ban: 2026-09-01 03:28:59,075 fail2ban.filter [1605]: INFO [plesk-modsecu ...
show more
cloudlinux2 fail2ban: 2026-09-01 03:28:59,075 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 199.38.125.96 - 2026-09-01 03:28:58cloudlinux2 fail2ban: 2026-09-01 03:29:06,374 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 8.231.42.245 - 2026-09-01 03:29:06cloudlinux2 fail2ban: 2026-09-01 03:29:09,646 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 199.38.125.96 - 2026-09-01 03:29:09cloudlinux2 fail2ban: 2026-09-01 03:29:06,634 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 8.231.42.245 - 2026-09-01 03:29:06cloudlinux2 fail2ban: 2026-09-01 03:29:06,442 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 8.231.42.245 - 2026-09-01 03:29:06cloudlinux2 fail2ban: 2026-09-01 03:29:06,764 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 8.231.42.245 - 2026-09-01 03:29:06cloudlinux2 fail2ban: 2026-09-01 03:29:06,932 fail2ban.filter [1605]: INFO [plesk-modsecurity] Found 8.231.42.245 - 2026-09-01 03:29:06
show less
Brute-Force
🇫🇷
masterguru
2026-09-01 01:29:13
(3 days ago)
Restricted File Access Attempt. Matched phrase ".git/" at REQUEST_FILENAME. (930130-193)
Hacking
Web App Attack
Anonymous
2026-09-01 00:57:04
(3 days ago)
(wordpress) Failed login wp-login.php or xmlrpc.php
Web App Attack
🇫🇷
dynamix
2026-08-31 10:13:20
(3 days ago)
Multiple WAF Violations
Web App Attack
Anonymous
2026-08-31 09:43:45
(3 days ago)
Banned by Fail2Ban on server
Web App Attack
🇳🇱
Mangelot Hosting
2026-08-31 09:34:50
(3 days ago)
(modsecurity) srv104 ModSecurity 8.231.42.245 (US/United States/245.42.231.8.bc.googleusercontent.co ...
show more
(modsecurity) srv104 ModSecurity 8.231.42.245 (US/United States/245.42.231.8.bc.googleusercontent.com): 30 in the last 3600 secs; Ports: *; Direction: inout; Trigger: LF_CUSTOMTRIGGER; Logs:
show less
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 08:26:41
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 8.231.42.245 (245.42.231.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.42.245 (245.42.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:26:36.022907 2026] [security2:error] [pid 7731:tid 7731] [client 8.231.42.245:56392] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.zodiacgate.timetemple.org"] [uri "/.git/config"] [unique_id "apU6vIQDi0-wxnkLBGr4BwAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 07:46:57
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 8.231.42.245 (245.42.231.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.42.245 (245.42.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 03:46:54.660865 2026] [security2:error] [pid 7785:tid 7785] [client 8.231.42.245:32782] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.zmgmt.z-mgmt.com"] [uri "/.git/config"] [unique_id "apUxburQcn19p4XNlCm6CgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
🇵🇱
sledzik1984
2026-08-31 07:29:35
(3 days ago)
8.231.42.245 - - [31/Aug/2026:09:29:34 +0200] "GET /admin/phpinfo.php HTTP/1.1" 404 188 "-" "Mozilla ...
show more
8.231.42.245 - - [31/Aug/2026:09:29:34 +0200] "GET /admin/phpinfo.php HTTP/1.1" 404 188 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
8.231.42.245 - - [31/Aug/2026:09:29:34 +0200] "GET /test/phpinfo.php HTTP/1.1" 404 188 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
8.231.42.245 - - [31/Aug/2026:09:29:34 +0200] "GET /dev/phpinfo.php HTTP/1.1" 404 188 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Web App Attack
🇳🇱
Site.eu
2026-08-31 06:08:30
(3 days ago)
Excessive multi-domain requests
Brute-Force
🇿🇦
conure.sh
2026-08-31 06:08:12
(3 days ago)
csagent: score 20.5: secrets grab x2, 404 noise floor x2; 1 domain(s) in 1s
Web App Attack
🇺🇸
OceanTreasure
2026-08-31 05:27:44
(3 days ago)
tcp/443; WordPress admin access attempt: "GET /wp-admin/phpinfo.php" @ 2026-08-31T05:16:18Z [proxy]
Web App Attack
🇺🇸
TPI-Abuse
2026-08-31 04:48:30
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 8.231.42.245 (245.42.231.8.bc.googleusercontent ...
show more
(mod_security) mod_security (id:210492) triggered by 8.231.42.245 (245.42.231.8.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 00:48:25.431211 2026] [security2:error] [pid 6256:tid 6256] [client 8.231.42.245:60690] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.zimmerscheidt.cajunfriedturkey.com"] [uri "/.git/config"] [unique_id "apUHmb1i6RxRE7-yovsQlAAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack